pino-abstract-transport
pino-abstract-transport copied to clipboard
build(deps): bump actions/dependency-review-action from 3 to 4
Bumps actions/dependency-review-action from 3 to 4.
Release notes
Sourced from actions/dependency-review-action's releases.
v4.0.0
- Update action to Node 20 by
@takost
in actions/dependency-review-action#639- Dependabot updates, see the full changelog for more details.
New Contributors
@takost
made their first contribution in actions/dependency-review-action#639Full Changelog: https://github.com/actions/dependency-review-action/compare/v3.1.5...v4.0.0
3.1.5
What's Changed
- Smaller
per_page
when requesting diff by@hmaurer
in actions/dependency-review-action#649- Update dependencies:
- Bump
@typescript-eslint/parser
from 6.10.0 to 6.13.1 by@dependabot
in actions/dependency-review-action#630- Bump prettier from 3.0.3 to 3.1.0 by
@dependabot
in actions/dependency-review-action#629- Bump
@types/jest
from 29.5.8 to 29.5.11 by@dependabot
in actions/dependency-review-action#637- Bump nodemon from 3.0.1 to 3.0.2 by
@dependabot
in actions/dependency-review-action#636- Replace pip -> pypi in PURL examples by
@febuiles
in actions/dependency-review-action#638- Bump
@typescript-eslint/eslint-plugin
from 6.12.0 to 6.15.0 by@dependabot
in actions/dependency-review-action#644- Bump eslint from 8.53.0 to 8.56.0 by
@dependabot
in actions/dependency-review-action#640- Bump
@typescript-eslint/parser
from 6.13.1 to 6.16.0 by@dependabot
in actions/dependency-review-action#645- Bump prettier from 3.1.0 to 3.1.1 by
@dependabot
in actions/dependency-review-action#646Full Changelog: https://github.com/actions/dependency-review-action/compare/v3.1.4...v3.1.5
3.1.4
What's Changed
Fixed a bug with severity filtering when using the
allow_ghsas
option: actions/dependency-review-action#623.Updates dependencies:
- Bump
@types/node
from 16.18.61 to 16.18.62 by@dependabot
in actions/dependency-review-action#619 action/pull/620- Bump
@typescript-eslint/eslint-plugin
from 6.11.0 to 6.12.0 by@dependabot
in actions/dependency-review-action#625- Bump typescript from 5.2.2 to 5.3.2 by
@dependabot
in actions/dependency-review-action#624Full Changelog: https://github.com/actions/dependency-review-action/compare/v3...v3.1.4
3.1.3
What's Changed
- Fixes purl "version must be percent-encoded" by
@theztefan
in actions/dependency-review-action#617Full Changelog: https://github.com/actions/dependency-review-action/compare/v3...v3.1.3
3.1.2
What's Changed
- Fix a regression for setups using self-hosted runners behind HTTP proxies:
@febuiles
in actions/dependency-review-action#611
... (truncated)
Commits
4cd9eb2
Updating docs to point to v4.4901385
bump to 4.0.0dbf82a4
Merge pull request #639 from takost/takost/update-to-node-2078aeb2a
Merge pull request #663 from actions/dependabot/npm_and_yarn/typescript-eslin...4e51000
Bump@typescript-eslint/parser
from 6.18.0 to 6.18.19560737
Merge pull request #661 from actions/dependabot/npm_and_yarn/typescript-eslin...4125f47
Merge pull request #660 from actions/dependabot/npm_and_yarn/types/node-16.18.7007cc93e
Bump@typescript-eslint/eslint-plugin
from 6.18.0 to 6.18.1e2c203b
Bump@types/node
from 16.18.62 to 16.18.70f0b304d
Merge pull request #653 from actions/dependabot/npm_and_yarn/got-14.0.0- Additional commits viewable in compare view
You can trigger a rebase of this PR by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.